--- title: Ping Federate & Ping Identity SAML SSO Setup Example short: Ping Federate & Ping Identity & PingOne SAML SSO Setup tier: enterprise order: 253 meta_title: Ping Federate & Ping Identity & PingOne SAML SSO Setup Example meta_description: Label Studio Enterprise documentation for setting up Ping Federate & Ping Identity & PingOne SAML SSO Setup Example. hide_sidebar: true --- ## PingOne Configuration ### Add new application 1. Click blue circle with the `+` sign. 2. Select `Manual Enter`, enter URLs from the Label Studio Enterprise SAML SSO page. 3. The result ### Overview Tab

### Configuration Tab



### Attributes Tab You should use this group value in mapping: ``` Expression: ${user.memberOfGroupNames == null ? '': #string.join(user.memberOfGroupNames, ',')} ```


### Policies Tab

### Access Tab ## Users & Groups !!! warning All users should have at least one group, otherwise it will lead to the login error. ## Label Studio Enterprise Settings You can find LSE SAML SSO settings on the **Organization** page >> **SAML SSO**. You are able to map user roles and workspaces with `Groups` attribute.
## Login using SSO Now you are able to login using your SSO session, write your company domain on the SSO Login page:
Administrators can find the domain on the SAML SSO page: